Skip to content

CVE-2014-4593

Cross-site scripting (XSS) vulnerability in wp-plugins-net/index.php in the WP Plugin Manager (wppm) plugin 1.6.4.b and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the filter parameter.

Ver en NVD

Severidad

N/A

EPSS

Probabilidad de explotación (próx. 30 días): 0.0017 (0.2%)
Percentil: 38.4%
EPSS: 2026-05-06

Afecta

wp_plugin_manager_project:wp_plugin_manager

Descripción técnica

Cross-site scripting (XSS) vulnerability in wp-plugins-net/index.php in the WP Plugin Manager (wppm) plugin 1.6.4.b and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the filter parameter.

Publicada: 2/7/2014, 18:55:10
Última modificación: 6/5/2026, 22:30:45

Referencias

InicioEventosBlogRecursosEquipo